Denial of Service in WebAssembly Virtual Machine by WAVM
CVE-2018-16769
8.8HIGH
Key Information:
- Vendor
- CVE Published:
- 10 September 2018
What is CVE-2018-16769?
A crafted file sent to the WebAssembly Virtual Machine in WAVM can trigger a denial of service by causing an application crash. This occurs due to mishandling within the libRuntime component where the InstructionCombiningPass's runOnFunction is improperly processed. As a result, this vulnerability may lead to interruptions in service for applications relying on WAVM, potentially affecting user experience and system reliability.
